Dear Techs, Hope you all are doing fine and safe. Can some one give me an insight on how I can configure 'Aggregate Interface Group' so that I can maintain a high availability for Internet traffic with my core switch? To make it more simple. The below is my current scenario. From a single cisco core switch, up-links goes to the firewall and then to the Internet. This single core switch is now getting replaced by 2 Huawei core switches, both in active-active mode. We have tested the 1 up-link scenario to firewall and is working as expected. To maintain the high network availability. Both up-links from Huawei core switch have to be added in the aggregate group in firewall. I was following this doc https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/networking/configure-interfaces/configure-an-aggregate-interface-group but is making me bit confused. Let’s consider I have 2 ethernet interfaces (up links from Huawei) configured on the interfaces 2 and 9. Ideally both interface configuration should be same as well. While creating an aggregate group, how we will inform palo alto that I will be using interfaces 2 and 9 as up links and these ports should be in this group?
... View more